Showing 1 vulnerability on this page for EtherHaul and MultiHaul Series microwave antennas

Signals CISA KEV Ransomware Nuclei
Ceragon Networks / Siklu Communication vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

Siklu EtherHaul Series EH-8010 - Arbitrary File Upload

On Ceragon Networks / Siklu Communication EtherHaul and MultiHaul Series microwave antennas before 2026-03-10, the rfpiped service on TCP port 555 allows unauthenticated file uploads to any writable location on the device. File upload packets use weak encryption (metadata only) with file contents transmitted in cleartext. No authentication or path validation is performed.

CWE-434Sep 15, 2025
CVSS6.5v3.1EPSS0.413%PoCs2SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX